Re: Access-list

From: Joe Soricelli (jsoricelli@xxxxxxxx)
Date: Wed Dec 01 1999 - 23:47:39 GMT-3


   
   Cisco Trace route uses UDP packets and starts at port 33434
   
   The port number increments one for each new packet.
   
   You can test this by doing an extended trace command.
   
   -joe
   ------------------------------------------------------------------
     Joseph M. Soricelli, CCIE #4803, CCNP, CCSI #20666
     EMAIL: jsoricelli@ccci.com
   
     Chesapeake Network Solutions Phone: (703) 207-0757
     8110 Gatehouse Road, Suite 101E Fax: (703) 207-0441
     Falls Church, VA 22042 E-Fax: (703) 783-0360
   
     FYI - About Chesapeake: We are a Cisco professional services
   partner
     as well as a Certified Training Partner. We provide network
   consulting
     services including Network Assessments, Network Design and
   Implementation
     Services, Network Management, Network Security, and Knowledge
   Transfer.
     As a training partner, we offer most of the Cisco training courses
   as well as
     training for Fore, NetScout, and CheckPoint-1 Firewalls. We now have
   23
     CCIEs on our staff of instructor/consultants.
   -------------------------------------------------------------------
   
   -----Original Message-----
   From: Ben Rife <brife@bignet.net>
   To: ccielab@groupstudy.com <ccielab@groupstudy.com>
   Date: Wednesday, December 01, 1999 7:35 PM
   Subject: Access-list
   
   Hey Everyone,
   
   
   
   I'm having trouble with the following senario:
   
   
   
   hosta ---------hostb-----------hostc
   
                   s0 s1
   
   
   
   
   
   I want an outbound access-list on hostb s1.
   
   a can ping c
   
   c can't ping a
   
   a can telnet to c
   
   a can traceroute c
   
   all other traffic denied.
   
   
   
   I'm having problems with getting the traceroute to work.
   
   Can someone give me a quick config?
   
   
   
   Thanks,
   
   
   
   Ben



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:21:57 GMT-3